Setting Super Password Control Parameters; Displaying And Maintaining Password Control - HP VSR1000 Security Configuration Manual

Virtual services router
Table of Contents

Advertisement

Step
7.
Specify the maximum number
of login attempts and the
action to be taken for the local
user when the user fails to log
in after the specified number
of attempts.

Setting super password control parameters

The super password allows you to obtain a temporary user role without reconnecting to the device. For
more information, see Fundamentals Configuration Guide.
To set super password control parameters:
Step
1.
Enter system view.
2.
Set the password expiration
time for super passwords.
3.
Configure the minimum length
for super passwords.
4.
Configure the password
composition policy for super
passwords.

Displaying and maintaining password control

Execute display commands in any view and reset commands in user view.
Task
Display password control configuration.
Display information about users in the
password control blacklist.
Delete users from the password control
blacklist.
Clear history password records.
Command
password-control login-attempt
login-times [ exceed { lock |
lock-time time | unlock } ]
Command
system-view
password-control super aging
aging-time
password-control super length
length
password-control super
composition type-number
type-number [ type-length
type-length ]
Command
display password-control [ super ]
display password-control blacklist [ user-name name | ip
ipv4-address | ipv6 ipv6-address ]
reset password-control blacklist [ user-name name ]
reset password-control history-record [ user-name name |
super [ role role name ] ]
119
Remarks
By default, the settings equal those
for the user group to which the
local user belongs. If no
login-attempt policy is configured
for the user group, the global
settings apply to the local user.
Remarks
N/A
The default setting is 90 days.
In non-FIPS mode, the default
setting is 10 characters.
In FIPS mode, the default setting
is 15 characters.
In non-FIPS mode, a default
super password must contain at
least one character type and at
least one character for each
type.
In FIPS mode, a default super
password must contain four
character types and at least
one character for each type.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents